Or you directly build the images like GitHub or Azure DevOps so you have your „reproducibility“ again, as everything is inside the images as the hosted ones:
I’m happy to collaborate on Authorizer - a hardware password manager based on old Android phones.
Next milestone: smartcard integration over USB.
I would like to build a lib to abstract USB Gadgets on Linux. This is necessary for adding smartcard support (e.g., to store your GPG keys in Authorizer). I already did a lot of research about it, but more on an amateur level as I’m not a kernel dev.
One further milestone on Authorizer is finding a next device (cheap, not too old Android, smaller, …) to base the development on.
It seems that the use-cases of de-identified authentication are very limited and apply mostly for situations where you don‘t need authentication at all by just stopping the data collection?!